Try our new research platform with insights from 80,000+ expert users

Cortex XDR by Palo Alto Networks vs SECDO Platform vs Symantec Endpoint Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
7.7
Cortex XDR secures data, reduces malware, lowers costs, and replaces systems, enhancing user satisfaction and operational efficiency.
Sentiment score
5.0
The SECDO Platform enhanced incident response, threat detection, and operational efficiency, providing significant cost savings and improved security posture.
Sentiment score
7.5
Symantec Endpoint Security delivers positive ROI by enhancing virus protection, reducing downtime, and improving operational efficiency with minimal disruption.
They appreciate the rich telemetry data from the solution, as it provides in-depth threat identification.
Symantec Endpoint Security filled gaps in our toolset, particularly with the ability to control network firewall on hosts remotely, which was greatly appreciated.
 

Customer Service

Sentiment score
6.6
Cortex XDR support is praised for responsiveness but criticized for delayed responses and knowledge gaps in certain regions.
Sentiment score
8.5
SECDO Platform's customer service is responsive, knowledgeable, fast, effective, and appreciated for technical expertise and courteous support across various channels.
Sentiment score
7.2
Symantec Endpoint Security's support is praised but varies post-Broadcom, with delays and regional differences affecting effectiveness.
Every vendor has similar support; it depends on how the case is handled and raised.
Their support is efficient and responsive whenever I raise a ticket through my portal.
In some cases, it rates as high as ten out of ten, while in others, it can be as low as eight.
There is no support in the German language, which is a problem for many public tenders.
 

Scalability Issues

Sentiment score
7.6
Cortex XDR offers scalable, efficient data handling across Linux, Mac, and Windows, praised for simplifying large enterprise management.
Sentiment score
7.8
SECDO Platform scales efficiently, handling increased loads and varying data volumes, suitable for small businesses and large enterprises.
Sentiment score
7.8
Symantec Endpoint Security is scalable, user-friendly, and ideal for large organizations, effortlessly integrating with existing systems.
Symantec Endpoint Security is quite scalable, and it is very important for large clients.
 

Stability Issues

Sentiment score
8.1
Cortex XDR is praised for its stability and reliability, with minor issues noted but generally offering seamless protection.
Sentiment score
6.8
SECDO Platform is reliable, integrates well, detects threats effectively, enhances efficiency, and maintains stability without frequent downtime.
Sentiment score
7.8
Symantec Endpoint Security is generally reliable, though updates and operating system variations can occasionally disrupt stability and resource usage.
Cortex XDR is stable, offering high quality and reliable performance.
I have encountered issues where I had to uninstall and reinstall the product on end users' computers to view the logs again.
 

Room For Improvement

Cortex XDR struggles with integration, high memory, false positives, limited features, complex setup, and lacks enhanced support and customization.
SECDO Platform requires improved integration, simpler setup, seamless reporting, enhanced customer support, and better scalability for optimal user experience.
Symantec Endpoint Security faces performance issues, complex management, insufficient threat detection, and compatibility problems affecting usability and support.
The inclusion of this feature would allow the application of DLP policies alongside antivirus policies via a single agent and console, making it more competitive as other OEMs often offer DLP solutions as part of their antivirus products.
Cortex XDR could improve its sales support team, including better commission structures and referral programs.
It is cumbersome to use, particularly in handling firewall management.
Device management is not very good and I am not enabling it in my organization due to security reasons.
I would like to see improvements in the scanning part of the solution, specifically to enhance the CPU and hard disk usage during scanning and updates to prevent disruption during work hours.
 

Setup Cost

Enterprise buyers view Cortex XDR as expensive yet flexible, offering scalable licensing with varying costs based on features and users.
Symantec Endpoint Security is valued for its cost-effective pricing, flexible plans, and discounts for long-term or special contracts.
Cortex XDR is perceived as expensive by some customers, yet offers dynamic pricing.
Compared to competitors such as CrowdStrike and Sophos, the pricing of Cortex XDR by Palo Alto Networks is similar to CrowdStrike but more expensive than Sophos.
It seems to be half the cost or more affordable than other solutions.
I rate the pricing, setup cost, and licensing around nine out of ten.
Symantec Endpoint Protection and Symantec Endpoint Security Enterprise are quite affordable, with Symantec Endpoint Security Complete costing about four times the Endpoint Protection price, still comparable to other EDR products.
 

Valuable Features

Cortex XDR excels in cybersecurity with advanced detection, ease of use, and integration, offering scalable, efficient threat management.
Users praise SECDO Platform for automated investigations, seamless integration, advanced forensics, and user-friendly design aiding efficient security event handling.
Symantec Endpoint Security provides comprehensive protection with device control, intrusion prevention, anti-virus, centralized management, and cross-platform integration.
The product provides automation responses in case of a threat attack, severity assessments, centralized manageability, and comprehensive compliance features, resulting in reduced costs.
It incorporates AI for normal behavior detection, distinguishing unusual operations.
One important feature is the EDR function, necessary for many public customers due to upcoming laws in Germany, which is available through Symantec Endpoint Security Complete.
The incident response capabilities allow me to resolve authentication and support issues promptly, ensuring the system operates without downtime.
A valuable feature of Symantec Endpoint Security is the ability to remotely isolate a computer from the network if it's compromised, either physically or digitally.
 

Featured Reviews

NiteshSharma - PeerSpot reviewer
Automated threat response and behavioral control improve security measures
I recommend adding a data loss prevention (DLP ( /categories/data-loss-prevention-dlp )) solution to Cortex XDR ( /categories/extended-detection-and-response-xdr ) by Palo Alto Networks. The inclusion of this feature would allow the application of DLP ( /categories/data-loss-prevention-dlp ) policies alongside antivirus policies via a single agent and console, making it more competitive as other OEMs often offer DLP solutions as part of their antivirus products. Additionally, multi-tenancy and multi-cloud features are not available and should be considered for inclusion.
reviewer1643085 - PeerSpot reviewer
Great documentation, good technical support, and very in-depth
The initial setup can be complex. I would advise users to leverage all of the access with Palo Alto, in terms of setting up with the technical account management teams. They need to ensure that what they have in mind for the product is actually going to be what happens. I have not run into any problems with deploying the product. Any of their security products are well-documented, either with open source intelligence or the documentation from Palo Alto. We had a client with less than a thousand users that received a dedicated engineer and a technical account manager that was able to walk them through the first 90 days of ownership. The support is certainly there.
MohammadAlshatreet - PeerSpot reviewer
Resolve support issues promptly while optimizing system resource usage
I use the solution primarily for scanning and identifying threats, which is essential in determining the percentage of resources used, such as CPU and hard disk. It's important to balance resource consumption to maintain operational efficiency. Furthermore, the incident response capabilities allow me to resolve authentication and support issues promptly, ensuring the system operates without downtime.
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
858,435 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Financial Services Firm
9%
Manufacturing Company
8%
Government
7%
Performing Arts
10%
Manufacturing Company
9%
Computer Software Company
9%
Financial Services Firm
7%
Computer Software Company
14%
Financial Services Firm
12%
Manufacturing Company
10%
Comms Service Provider
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
Ask a question
Earn 20 points
Which is better - Cortex XDR or Symantec End-User Endpoint Security?
Aqua Security is easy to use and very manageable. Its main focus is on Kubernetes and Docker. Security is a very valu...
Which offers better endpoint security - Symantec or Microsoft Defender?
We use Symantec because we do not use MS Enterprise products, but in my opinion, Microsoft Defender is a superior sol...
What do you like most about Symantec End-User Endpoint Security?
Symantec have everything – documentation, videos, data sheets.
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
No data available
Symantec EPP, Symantec Endpoint Protection (SEP)
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Valley National Bank, IDT Corporation
Audio Visual Dynamics, Red Deer Advocate, Asia Pacific Telecom Co. Ltd., Kibbutz Ein Gedi, and AMETEK, Inc.
Find out what your peers are saying about CrowdStrike, SentinelOne, Microsoft and others in Endpoint Detection and Response (EDR). Updated: January 2025.
858,435 professionals have used our research since 2012.